Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-27704 | A duplicate <code>SystemPrincipal</code> object could be created when parsing a non-system html document via <code>DOMParser::ParseFromSafeString</code>. This could have lead to bypassing web security checks. This vulnerability affects Firefox < 109. |
Ubuntu USN |
USN-5816-1 | Firefox vulnerabilities |
Thu, 18 Dec 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A duplicate <code>SystemPrincipal</code> object could be created when parsing a non-system html document via <code>DOMParser::ParseFromSafeString</code>. This could have lead to bypassing web security checks. This vulnerability affects Firefox < 109. | A duplicate `SystemPrincipal` object could be created when parsing a non-system html document via `DOMParser::ParseFromSafeString`. This could have lead to bypassing web security checks. This vulnerability affects Firefox < 109. |
| Title | Creation of duplicate SystemPrincipal from less secure contexts |
Fri, 10 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 10 Jan 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-863 |
Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2025-12-18T15:23:26.502Z
Reserved: 2023-01-16T00:00:00.000Z
Link: CVE-2023-23604
Updated: 2024-08-02T10:35:33.566Z
Status : Modified
Published: 2023-06-02T17:15:10.867
Modified: 2025-12-18T16:15:49.067
Link: CVE-2023-23604
No data.
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN